EMOTET Configuration Extractor
Python script to extract the configuration from EMOTET samples.
Notorious banking trojan turned modular malware loader. Repeatedly disrupted by law enforcement but resurfaces. Primary delivery mechanism for TrickBot and Ryuk.
Also known as: emotet, emotet botnet, geodo, heodo
Python script to extract the configuration from EMOTET samples.
Elastic Security Labs discusses the EMOTET trojan and is releasing a tool to dynamically extract configuration files using code emulators.